On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, and 12.1.0-12.1.5.1, BIG-IP systems setup for connection mirroring in a High Availability (HA) pair transfers sensitive cryptographic objects over an insecure communications channel. This is a control plane issue which is exposed only on the network used for connection mirroring.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: f5

Published: 2020-04-30T20:50:43

Updated: 2024-08-04T08:47:40.750Z

Reserved: 2020-01-06T00:00:00

Link: CVE-2020-5886

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-04-30T21:15:17.243

Modified: 2021-07-21T11:39:23.747

Link: CVE-2020-5886

cve-icon Redhat

No data.